2004 CVE Vulnerabilities

2,707 CVEs published in 2004.

Filter:UNKNOWNClear
CVE IDSeverityCVSSDescription
CVE-2004-1064——The safe mode checks in PHP 4.x to 4.3.9 and PHP 5.x to 5.0.2 truncate the file path before passing the data to the real...
CVE-2004-1117——The init scripts in ChessBrain 20407 and earlier execute user-owned programs with root privileges, which allows local us...
CVE-2004-1120——Multiple buffer overflows in (1) http.c, (2) http-retr.c, (3) main.c and other code that handles network protocols in Pr...
CVE-2004-1130——Cross-site scripting (XSS) vulnerability in admin.asp in CMailServer 5.2 allows remote attackers to execute arbitrary we...
CVE-2004-0914——Multiple vulnerabilities in libXpm for 6.8.1 and earlier, as used in XFree86 and other packages, include (1) multiple in...
CVE-2004-1011——Stack-based buffer overflow in Cyrus IMAP Server 2.2.4 through 2.2.8, with the imapmagicplus option enabled, allows remo...
CVE-2004-1136——Buffer overflow in CuteFTP Professional 6.0, and possibly other versions, allows remote FTP servers to cause a denial of...
CVE-2004-1105——Nortel Networks Contivity VPN Client displays a different error message depending on whether the username is valid or in...
CVE-2004-1106——Cross-site scripting (XSS) vulnerability in Gallery 1.4.4-pl3 and earlier allows remote attackers to execute arbitrary w...
CVE-2004-0899——The DHCP Server service for Microsoft Windows NT 4.0 Server and Terminal Server Edition, with DHCP logging enabled, does...
CVE-2004-1107——dispatch-conf in Portage 2.0.51-r2 and earlier allows local users to overwrite arbitrary files via a symlink attack on t...
CVE-2004-0900——The DHCP Server service for Microsoft Windows NT 4.0 Server and Terminal Server Edition does not properly validate the l...
CVE-2004-0996——main.c in cscope 15-4 and 15-5 creates temporary files with predictable filenames, which allows local users to overwrite...
CVE-2004-0894——LSASS (Local Security Authority Subsystem Service) of Windows 2000 Server and Windows Server 2003 does not properly vali...
CVE-2004-1103——MailPost 5.1.1sv, and possibly earlier versions, when debug mode is enabled, allows remote attackers to gain sensitive i...
CVE-2004-1108——qpkg in Gentoolkit 0.2.0_pre10 and earlier allows local users to overwrite arbitrary files via a symlink attack on a tem...
CVE-2004-0993——Buffer overflow in hpsockd before 0.6 allows remote attackers to cause a denial of service (application crash) or possib...
CVE-2004-0890——Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reasons: This candidate is a reservation duplicat...
CVE-2004-1101——mailpost.exe in MailPost 5.1.1sv, and possibly earlier versions, allows remote attackers to cause a denial of service (s...
CVE-2004-0893——The Local Procedure Call (LPC) interface of the Windows Kernel for Windows NT 4.0, Windows 2000, Windows XP, and Windows...
CVE-2004-0901——Microsoft Word for Windows 6.0 Converter (MSWRD632.WPC), as used in WordPad, does not properly validate certain data len...
CVE-2004-0994——Multiple integer overflows in xzgv 0.8 and earlier allow remote attackers to execute arbitrary code via images with larg...
CVE-2004-1102——MailPost 5.1.1sv, and possibly earlier versions, displays a different error message depending on whether the requested f...
CVE-2004-1109——The FWDRV.SYS driver in Kerio Personal Firewall 4.1.1 and earlier allows remote attackers to cause a denial of service (...
CVE-2004-0883——Multiple vulnerabilities in the samba filesystem (smbfs) in Linux kernel 2.4 and 2.6 allow remote samba servers to cause...

Check if your code is affected by 2004 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now